ExamGecko
Home Home / Isaca / CGEIT

Isaca CGEIT Practice Test - Questions Answers, Page 42

Question list
Search
Search

List of questions

Search

Related questions











In a large enterprise, which of the following should be responsible for the implementation of an IT balanced scorecard?

A.
Project management office
A.
Project management office
Answers
B.
Chief information officer (CIO)
B.
Chief information officer (CIO)
Answers
C.
IT steering committee
C.
IT steering committee
Answers
D.
Chief risk officer (CRO)
D.
Chief risk officer (CRO)
Answers
Suggested answer: A

Which of the following should be established FIRST so that data owners can consistently assess the level of data protection needed across the enterprise?

A.
Data encryption program
A.
Data encryption program
Answers
B.
Data risk management program
B.
Data risk management program
Answers
C.
Data retention policy
C.
Data retention policy
Answers
D.
Data classification policy
D.
Data classification policy
Answers
Suggested answer: D

IT maturity models measure:

A.
performance.
A.
performance.
Answers
B.
value.
B.
value.
Answers
C.
capabilities.
C.
capabilities.
Answers
D.
outcome.
D.
outcome.
Answers
Suggested answer: C

A newly appointed CIO has been tasked with the responsibility of developing an effective IT enterprise roadmap that meets business requirements. Which of the following is the BEST way to ensure that the business needs have been taken into consideration?

A.
Involve process owners in requirements gathering.
A.
Involve process owners in requirements gathering.
Answers
B.
Implement a balanced scorecard.
B.
Implement a balanced scorecard.
Answers
C.
Include user acceptance testing (UAT) as part of the resulting IT solutions.
C.
Include user acceptance testing (UAT) as part of the resulting IT solutions.
Answers
Suggested answer: A

Right-to-audit clauses are intended to ensure the vendor:

A.
aligns staff skill sets adequately.
A.
aligns staff skill sets adequately.
Answers
B.
maintains adequate budget for risk management.
B.
maintains adequate budget for risk management.
Answers
C.
addresses compliance requirements.
C.
addresses compliance requirements.
Answers
D.
optimizes IT operations for service delivery
D.
optimizes IT operations for service delivery
Answers
Suggested answer: C

Which of the following should be the FIRST step for executive management to take in communicating what is considered acceptable use with regard to personally owned devices for company business?

A.
Require employees to read and sign a disclaimer.
A.
Require employees to read and sign a disclaimer.
Answers
B.
Develop and disseminate an applicable policy.
B.
Develop and disseminate an applicable policy.
Answers
C.
Post awareness messages throughout the facility.
C.
Post awareness messages throughout the facility.
Answers
D.
Provide training on how to protect data on personal devices.
D.
Provide training on how to protect data on personal devices.
Answers
Suggested answer: B

When updating an IT governance framework to support an outsourcing strategy, which of the following is MOST important?

A.
Evaluating the choice of underlying technology platforms used by the service provider
A.
Evaluating the choice of underlying technology platforms used by the service provider
Answers
B.
Ensuring the outsource provider's IT function is aligned with its business function
B.
Ensuring the outsource provider's IT function is aligned with its business function
Answers
C.
Verifying the vendor has developed standard operation procedures for outsourced functions
C.
Verifying the vendor has developed standard operation procedures for outsourced functions
Answers
D.
Ensuring the effective management of contracts with third-party providers
D.
Ensuring the effective management of contracts with third-party providers
Answers
Suggested answer: C

A financial services company has implemented the use of a cloud-based centralized customer relationship management (CRM) system. The company has decided to go multi-national. Which of the following should be the enterprise risk management (ERM) committee's PRIMARY consideration?

A.
Security issues
A.
Security issues
Answers
B.
Vendor capability
B.
Vendor capability
Answers
C.
Return on investment (ROI)
C.
Return on investment (ROI)
Answers
D.
Compliance issues
D.
Compliance issues
Answers
Suggested answer: D

An organization is evaluating vendors to provide mobile device management (MDM) services. Which of the following is a KEY governance consideration for the IT steering committee?

A.
Service level targets align with business requirements.
A.
Service level targets align with business requirements.
Answers
B.
Employee-owned devices will be covered by the service.
B.
Employee-owned devices will be covered by the service.
Answers
C.
The MDM services are delivered via a cloud.
C.
The MDM services are delivered via a cloud.
Answers
Suggested answer: A

IT senior management has just received a survey report indicating that more than one third of the organization's key IT staff plan to retire within the next 12 months. Which of the following is the MOST important governance action to prepare for this possibility?

A.
Engage human resources (HR) for recruitment of new staff.
A.
Engage human resources (HR) for recruitment of new staff.
Answers
B.
Request the development of a succession plan.
B.
Request the development of a succession plan.
Answers
C.
Review motivation drivers for key IT staff.
C.
Review motivation drivers for key IT staff.
Answers
D.
Evaluate lower-level staff as succession candidates.
D.
Evaluate lower-level staff as succession candidates.
Answers
Suggested answer: B
Total 577 questions
Go to page: of 58